Home Malware Programs Backdoors Rbot.JE

Rbot.JE

Posted: December 7, 2010

Threat Metric

Threat Level: 6/10
Infected PCs: 54
First Seen: December 7, 2010
Last Seen: July 21, 2020
OS(es) Affected: Windows

Aliases

Suspicious file [Panda]Cloaked Malware [Prevx1]Suspicious:W32/Malware!Gemini [F-Secure]W32.IRCbot [Symantec]Backdoor.Win32.SdBot.fwc [K7AntiVirus]Cryp_Mangled [TrendMicro]Trj/CI.A [Panda]Trojan.Win32.Llac.cfa [Kaspersky]VB.AALV [AVG]Trojan/Win32.Llac.gen [Antiy-AVL]Backdoor.Win32.SdBot!IK [a-squared]Trojan.Win32.Obfuscated.ev [Sunbelt]NirCmd [Sophos]Artemis!32C131892D35 [McAfee+Artemis]ApplicUnsaf.Win32.Hide.~AB [Comodo]
More aliases (44)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



Virus\ComboFix.exe File name: ComboFix.exe
Size: 3.18 MB (3183186 bytes)
MD5: 32c131892d35d723baa6749b671177e4
Detection count: 72
File type: Executable File
Mime Type: unknown/exe
Path: Virus
Group: Malware file
Last Updated: July 21, 2020
%APPDATA%\gcczy.exe File name: gcczy.exe
Size: 113.69 KB (113694 bytes)
MD5: 584f34303a2b11630a19f75a5791ebf7
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 8, 2010
svdhost.exe File name: svdhost.exe
Size: 933.88 KB (933888 bytes)
MD5: db0eb7c50e1617f6a9ccd0cb00bd1b5d
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: April 2, 2013
svuhost.exe File name: svuhost.exe
Size: 933.88 KB (933888 bytes)
MD5: b0c15d7589796ffe86cd5406173c8ef8
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 7, 2010
Loading...